www.bitlordapp.com

PERFECT PRIVACY, LLC  (Proxy Registrant)

Domain Information

The domain www.bitlordapp.com is registered by proxy through DOMAIN LIFESTYLE, LLC and was originally registered in June of 2015. This domain has been known to host and distribute adware as well as other potentially unwanted software. The hosted servers are located in Belfast, Northern Ireland within United Kingdom which resides on the RIPE Network Coordination Centre network.
Remove Malware from www.bitlordapp.com - Powered by Reason Core Security
Registrar:
DOMAIN LIFESTYLE, LLC

Server location:
Northern Ireland, United Kingdom (GB)

Create date:
Thursday, June 04, 2015

Expires date:
Saturday, June 04, 2016

Updated date:
Thursday, June 04, 2015

Root domain:

Scanner detections:
Detections  (100% detected)

Scan engine
Details
Detections

VIPRE Antivirus
InstallCore, Conduit, Trojan.Win32.Generic, Threat.4786018
100.00%

Dr.Web
Trojan.Packed.24524, Adware.Conduit.6, Adware.Conduit.27, Adware.Conduit.87, Adware.InstallCore.122, Adware.Conduit.101
97.50%

Sophos
Install Core Click run software, PUA 'Install Core Click run software', Install Core Click run software (PUA)
92.50%

ESET NOD32
Win32/InstallCore.GG, Win32/InstallCore.BL, Win32/InstallCore.DK (variant), Win32/Kryptik.BWAM (variant), Win32/Wajam (variant)
87.50%

McAfee
Artemis!F1C0CA4C7B25, Artemis!40CAF979112A, Artemis!0FCAE7C70439, Artemis!F21D397DAB46, Artemis!3040A4107310, Artemis!74B26515FF6D, Artemis!A1B3298B13A2, Artemis!DF09182CD971, Artemis!3D6D0E8BB95B, Artemis!7EB3FB7DE054, Artemis!43A983CB29DC, Artemis!AD83BA0F6EDC, Artemis!DE69C106225E, Artemis!573C4EC0FEE8, Artemis!DC2D09C18989, Artemis!4235322F75E0
82.50%

Trend Micro House Call
TROJ_GEN.F47V1123, TROJ_GEN.F47V0708, TROJ_FAKEAV.BMC, TROJ_GEN.F47V1016, TROJ_GEN.F47V0220, TROJ_GEN.F47V0311, TROJ_GEN.F47V0213
82.50%

McAfee Web Gateway
Artemis!F21D397DAB46, Artemis!40CAF979112A, Artemis!0FCAE7C70439, Artemis!3040A4107310, Artemis!74B26515FF6D, Artemis!A1B3298B13A2
82.50%

K7 Gateway Antivirus
Unwanted-Program , Riskware, Trojan, Adware
75.00%

Avira AntiVirus
ADWARE/InstallCore.Gen7, APPL/InstallCore.AS.3, PUA/InstallCore.Gen7
75.00%

K7 AntiVirus
Unwanted-Program , Riskware, Trojan
72.50%

Comodo Security
ApplicUnwnt, UnclassifiedMalware, Application.Win32.InstallCore.BWAN
72.50%

Vba32 AntiVirus
Downware.InstallCore
62.50%

Fortinet FortiGate
W32/InstallCore.GG, Riskware/InstallCore, Riskware/Wajam, W32/Kryptik.BWAM!tr, Riskware/Toolbar_Conduit, Riskware/Agent
57.50%

F-Prot
W32/A-42c63c6c, W32/InstallCore.R4.gen, W32/InstallCore.R2.gen, W32/InstallCore.R.gen
52.50%

Panda Antivirus
PUP/MultiToolbar.A, PUP/Conduit.A
50.00%

The domain www.bitlordapp.com has been seen to resolve to the following 18 IP addresses.

ns513839.ip-167-114-156.net
October 26, 2015

June 19, 2015

unallocated.barefruit.co.uk
May 5, 2015

ec2-54-194-169-19.eu-west-1.compute.amazonaws.com
August 16, 2014

ec2-54-72-121-228.eu-west-1.compute.amazonaws.com
August 16, 2014

ec2-54-229-24-120.eu-west-1.compute.amazonaws.com
August 16, 2014

ec2-54-72-11-25.eu-west-1.compute.amazonaws.com
August 1, 2014

ec2-176-34-131-222.eu-west-1.compute.amazonaws.com
August 1, 2014

ec2-54-229-170-114.eu-west-1.compute.amazonaws.com
August 1, 2014

ec2-54-229-74-109.eu-west-1.compute.amazonaws.com
April 26, 2014

ec2-54-229-130-160.eu-west-1.compute.amazonaws.com
April 26, 2014

ec2-54-229-168-240.eu-west-1.compute.amazonaws.com
April 26, 2014

ec2-54-72-149-41.eu-west-1.compute.amazonaws.com
April 4, 2014

ec2-54-72-141-38.eu-west-1.compute.amazonaws.com
April 4, 2014

ec2-54-246-208-251.eu-west-1.compute.amazonaws.com
April 4, 2014

ec2-50-112-240-188.us-west-2.compute.amazonaws.com
December 22, 2013

ec2-50-112-94-132.us-west-2.compute.amazonaws.com
December 22, 2013

ec2-54-244-249-150.us-west-2.compute.amazonaws.com
December 22, 2013

File downloads found at URLs served by www.bitlordapp.com.

6 / 68      (PUP)
http://www.bitlordapp.com/d/btl1/.../?dl=1  (the-war-of-1812-alphaomega-download_bitlord.exe)

6 / 68      (PUP)
http://www.bitlordapp.com/d/se/.../?dl=1  (iron_man_2_2010_1080p_brrip_x264_-_1.60gb_-_yify_bitlord.exe)

22 / 68    (Adware)

17 / 68    (PUP)
http://www.bitlordapp.com/d/sb/.../?dl=1  (games-of-thrones-season-3_bitlord.exe)

17 / 68    (PUP)

14 / 68    (Adware)

The following 140 files have been seen to comunicate with www.bitlordapp.com in live environments.

 
Latest 20 of 140 files

URL:
http://www.bitlordapp.com/

Title:
“bitlordapp.com - This website is for sale! - bitlordapp Resources and Information.”

Title (12/22/2013):
“BitLord”

Title (4/4/2014):
“bitlordapp.com”

Description:
“This website is for sale! bitlordapp.com is your first and best source for all of the information you’re looking for. From general topics to more of what you would expect to find here, bitlordapp.com has it all. We hope you find what you are sea...”

Web server:
Apache (PHP/5.3.3-7+squeeze28)

Facebook:
Shares:  13

Statistics are for the previous month.

Remove Malware from www.bitlordapp.com - Powered by Reason Core Security